servnest-containers/conf/knot.conf

53 lines
1.2 KiB
Text

server:
version: ""
nsid: ""
rundir: "/run/knot"
listen: [ "::@42053", "0.0.0.0@42053" ] #, "/run/knot/dns.sock" ]
listen-quic: [ "::@42853", "0.0.0.0@42853" ]
automatic-acl: "on"
log:
- target: stderr
any: warning
- target: "/var/log/knot/knot.log"
any: debug
database:
storage: "/var/lib/knot"
policy:
- id: "servnest"
algorithm: "ed25519"
nsec3: "on"
nsec3-iterations: 0
nsec3-salt-length: 0
delete-delay: 60d
dnskey-management: "incremental"
remote:
- id: "secondary"
address: [ "10.5.0.52@42853" ]
quic: on
cert-key: "1111111111111111111111111111111111111111111=" # will be replaced by setup-xoq.sh
template:
- id: "servnest"
storage: "/srv/servnest/ns"
# notify: "secondary"
dnssec-signing: "on"
dnssec-policy: "servnest"
catalog-role: "member"
catalog-zone: "servnest.test.invalid."
zone:
- domain: "servnest.test.invalid."
# notify: "secondary"
catalog-role: "generate"
- domain: "servnest.test."
template: "servnest"
storage: "/srv/servnest/reg"
- domain: "test.servnest.test."
template: "servnest"
storage: "/srv/servnest/reg"